Security News

Uncle Sam wants 'ethical hackers' to crack its planetary defenses, but don't expect a pay-day from this bug bounty
2021-05-10 11:32

The United States' Department of Defense has opened up all of its publicly facing systems and apps to investigation under a bug bounty program. The bug bounty system had only been aimed at websites but now Kristopher Johnson, director of its Vulnerability Disclosure Program, has said "Websites were only the beginning as they account for a fraction of our overall attack surface" and urged the infosec community to take a wider view.

Pair accused of turning photos into vids to crack tax dept facial recognition system in China
2021-03-31 05:05

A duo in China has been accused of tricking a government-run identity verification system to create fake invoices. According to state-controlled outlet Xinhua, the suspects tricked the State Taxation Administration platform's identity verification system by manipulating high-def photos with a widely available app that turns photos into videos.

Molson Coors Cracks Open a Cyberattack Investigation
2021-03-12 15:39

Brewing company Molson Coors acknowledged on Thursday that it has "Experienced a systems outage that was caused by a cybersecurity incident," according to a Form 8-K filed with the SEC. The company did not say which type of attack has caused widespread issues across its entire business - including its brewery operations, production and shipments - but given recent major attacks on other mainstream companies, security experts are speculating that it could have been a ransomware attack. "High-profile attacks are becoming all too common, as attackers have realized they are immensely more profitable when they target large organizations and disrupt their critical business operations - in this case, the brewing operations of the world's biggest, well-known beer brands," observed Edgard Capdevielle, CEO at Nozomi Networks, in an email to Threatpost.

Belgian cops crack down on encrypted phone network Sky ECC in 200 overnight raids as firm denies criminal ties
2021-03-10 14:48

A series of police raids in Belgium have resulted in the apparent shutdown of the Sky ECC encrypted mobile phone network. As the second major encrypted phone network to be shut down by police in Europe, Sky ECC's seeming downfall has parallels with the Encrochat story, where French and Dutch police man-in-the-middle'd the encrypted phone network on suspicion it was being used mainly by organised criminals.

Apple to Crack Down on Tracking iPhone Users in Early Spring
2021-01-28 12:56

Apple says it will roll out a new privacy control in the spring to prevent iPhone apps from secretly shadowing people. Although Apple didn't provide a specific date, the general timetable disclosed Thursday means a long-awaited feature known as App Tracking Transparency will be part of an iPhone software update likely to arrive in late March or some point in April.

Firefox Cracks Down on Supercookies to Improve User Privacy
2021-01-26 20:18

Mozilla this week announced further improvements to user privacy in Firefox, through the isolation of network connections and caches, thus essentially cracking down on supercookies. Specifically, Firefox 85 is arriving with an updated network architecture, where network connections and caches are isolated to the website being visited.

Cryptologists Crack Zodiac Killer’s 340 Cipher
2020-12-17 17:30

A remote team of three hobbyist cryptologists have solved one of the Zodiac Killer's cipher after a half century. The 340 Cipher, named after its 340 characters, was trickier to figure out - until this week, almost 50 years later, when an unlikely team of cryptographers broke the code.

Tim Berners-Lee asks everyone to do new biz a Solid and let him have another crack at fixing the Web's privacy
2020-11-10 07:55

Inventor of the world wide web, Tim Berners-Lee, is having another crack at fixing the internet's biggest problems with the launch of a new enterprise server. The Inrupt Enterprise Solid Server is the first product from a company the inventor started two years ago in response to the problem of personal data online, where tech giants like Facebook and Google build vast databases on user's profiles and sell them to advertisers to make massive profits.

Tim Berners-Lee asks everyone to do new biz a Solid and let him have another crack at fixing the Web's privacy
2020-11-10 07:55

Inventor of the world wide web, Tim Berners-Lee, is having another crack at fixing the internet's biggest problems with the launch of a new enterprise server. The Inrupt Enterprise Solid Server is the first product from a company the inventor started two years ago in response to the problem of personal data online, where tech giants like Facebook and Google build vast databases on user's profiles and sell them to advertisers to make massive profits.

Chinese hacking competition cracks Chrome, ESXi, Windows 10, iOS 14, Galaxy 20, Qemu, and more
2020-11-09 07:11

In 1965, Gordon Moore published a short informal paper, Cramming more components onto integrated circuits. In it, he noted [PDF] that in three years, the optimal cost per component on a chip had dropped by a factor of 10, while the optimal number had increased by the same factor, from 10 to 100.